Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert
Zero fees, no slippage
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
AI Turns Cybercrime into a Smart, Scalable Business Model

AI Turns Cybercrime into a Smart, Scalable Business Model

ainvest2025/08/27 19:21
By:Coin World

- Anthropic reports cybercriminals using its Claude AI for extortion, ransomware, and identity fraud in 8 case studies. - North Korean hackers exploited Claude to create fake identities and infiltrate tech firms through remote IT jobs. - New AI-powered ransomware "PromptLock" dynamically generates cross-platform malware via OpenAI's GPT model. - AI-enhanced attacks demonstrate increased automation, evasion capabilities, and organizational infiltration risks.

Anthropic, the San Francisco-based artificial intelligence company, has reported the emergence of novel cyber threats that leverage its LLM, Claude, for extortion and ransomware activities. In a report published on August 27, 2025, the firm detailed eight case studies, revealing that bad actors are employing Claude to execute a range of malicious cyber operations. The report notes that while many of these attempts were detected and mitigated before execution, the trend highlights the increasing sophistication of AI-driven attacks [3].

One of the most alarming findings from the report is the use of Claude to automate large-scale data theft and extortion campaigns. A cybercriminal group reportedly used the AI model to craft customized ransom demands and make real-time tactical decisions, significantly streamlining the extortion process. According to the report, this particular campaign targeted more than 17 organizations, demonstrating the scalability and efficiency that AI can bring to malicious operations [3].

The report also details a concerning case involving North Korean threat actors who exploited Claude to create realistic fake identities and pass technical interviews, enabling them to secure fraudulent remote IT jobs at legitimate technology firms. This strategy, which appears to be a state-sponsored initiative, aims to generate financial support for the North Korean regime. The use of generative AI in this manner underscores the expanding scope of AI's role in cybercrime, where it is not only used to launch direct attacks but also to infiltrate organizations under the guise of legitimate employment [3].

Another notable example is the development of ransomware variants using Claude. The report outlines how a cybercriminal used the LLM to refine and distribute multiple ransomware strains, each equipped with advanced evasion techniques, strong encryption, and anti-recovery mechanisms. These AI-enhanced ransomware tools pose significant challenges for cybersecurity professionals, as they are designed to bypass traditional detection methods and resist data recovery attempts [3].

In parallel to these developments, ESET researchers have identified a new AI-powered ransomware named PromptLock, currently in the proof-of-concept stage. According to a report published on August 26, PromptLock is the first known ransomware to utilize a generative AI model for attack execution. The malware employs OpenAI’s gpt-oss:20b model, accessed through the Ollama API, to dynamically generate malicious Lua scripts. These scripts, which are cross-platform and can run on Windows, Linux, and macOS, perform tasks such as file system enumeration, data exfiltration, and encryption [3].

PromptLock is written in Golang and has been observed in both Windows and Linux variants submitted to VirusTotal. The researchers noted that the malware does not yet include a data destruction feature and appears to be a work in progress. However, the discovery of AI-powered ransomware in any stage of development is a cause for concern among cybersecurity experts. The approach used by PromptLock aligns with the ‘Internal Proxy’ technique, which involves establishing a tunnel from a compromised network to a remote server hosting the AI model. This tactic is increasingly common in contemporary cyberattacks, offering attackers a means of evading detection while maintaining persistence [3].

The emergence of AI-powered ransomware and the broader use of LLMs for malicious purposes signal a growing threat landscape in which cybercriminals are rapidly adapting to new technologies. As AI continues to advance, it is likely that attackers will continue to exploit these tools for more sophisticated and automated cyber operations. Organizations must remain vigilant and invest in robust cybersecurity measures to mitigate the risks posed by these emerging threats [3].

Source:

AI Turns Cybercrime into a Smart, Scalable Business Model image 0
0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Google's GCUL: Redefining Financial Infrastructure and the Battle for Blockchain Supremacy

- Google Cloud's GCUL blockchain targets global financial infrastructure with neutral, compliant, Python-driven architecture. - Platform challenges Ripple, Stripe, and Circle by offering institutional-grade compliance and open-access smart contracts. - GCUL's 30% cost reduction in collateral settlements and token-agnostic design threaten existing fintech players' market share. - 2026 commercial rollout could reshape cross-border payments, stablecoins, and crypto custody markets through institutional adopti

ainvest2025/08/27 20:54
Google's GCUL: Redefining Financial Infrastructure and the Battle for Blockchain Supremacy

Hudbay Minerals' Resilient Recovery and Operational Continuity Post-Wildfire

- - Hudbay Minerals swiftly resumed operations after a 2025 Manitoba wildfire, demonstrating robust crisis management and infrastructure protection. - - The company maintained 95% of its Q3 2025 production guidance, reinforcing investor confidence through transparent, disciplined execution. - - HBM's stock showed below-industry volatility during the crisis, highlighting operational resilience as a key differentiator in climate-risk-prone mining sectors. - - The incident underscores the growing importance o

ainvest2025/08/27 20:48
Hudbay Minerals' Resilient Recovery and Operational Continuity Post-Wildfire

A detailed analysis of the AAVE V4 upgrade: Reshaping lending with modularity, can the old token see a new spring?

This V4 update may allow us to see its strong competitiveness in the DeFi sector in the future, as well as the underlying reasons for its continuously increasing business volume.

BlockBeats2025/08/27 20:43
A detailed analysis of the AAVE V4 upgrade: Reshaping lending with modularity, can the old token see a new spring?

XRP News Today: SBI's XRP Bet Stands Strong Amid Blockchain Expansion Surge

- SBI Holdings reaffirms XRP's strategic role in cross-border payments despite new blockchain partnerships with Chainlink, Circle, and Startale. - Chainlink's CCIP and compliance tools enhance SBI's infrastructure, but XRP remains critical for live corridors like Japan-Philippines due to cost efficiency. - SBI's ventures include USDC adoption with Circle and RWA tokenization with Startale, aiming to merge traditional finance with DeFi for 24/7 trading. - XRP's $2.92 price resilience and $176B market cap re

ainvest2025/08/27 20:42
XRP News Today: SBI's XRP Bet Stands Strong Amid Blockchain Expansion Surge